CtrlK
BlogDocsLog inGet started
Tessl Logo

signing-in-to-aws

Gets AWS credentials for CLI/SDK access via `aws login`. Activates when a developer needs to authenticate to AWS for local development, when an AWS operation fails due to missing or expired credentials, or when someone asks about setting up AWS access. Triggers: "set up AWS", "configure AWS", "aws login", "get credentials", "authenticate", "session expired", "token expired", "no credentials", "AccessDeniedException" with no configured credentials.

68

Quality

83%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide

SecuritybySnyk

Critical

Do not install without reviewing

SKILL.md
Quality
Evals
Security

Quality

Content

81%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

A highly actionable, well-sequenced skill with concrete commands and thorough error recovery. Its weaknesses are repetition (confirmation instruction, install link, key-security rationale each stated multiple times), a pinned version number that will age, and a single-file layout that is slightly long for a skill with no bundle files.

Suggestions

State the run-confirmation requirement once (e.g., only in the Flow's 'Confirm and run aws login' section) and reference it from the Important list instead of repeating the full instruction and example phrases twice.

Explain the long-term-key security tradeoff once and reuse it, rather than duplicating the rationale in both the precondition checks and the `aws configure` fallback sections; likewise link the AWS CLI installation guide once.

Move the Handling Errors and Additional Resources sections into a references/ file (e.g., ERROR-RECOVERY.md) to shorten SKILL.md toward an overview, and consider noting the CLI version requirement as a checkable condition rather than a hard-coded 2.32.0 that will age.

DimensionReasoningScore

Conciseness

Mostly efficient, but the confirmation-before-running instruction is stated twice, the CLI install-guide link appears three times, and the long-term-key security rationale is repeated in two sections — more than minor trimming. The pinned version 2.32.0 is also time-sensitive information not placed in a deprecated/old-patterns section, which the guidelines say to penalize.

3 / 5

Actionability

Guidance is fully executable with copy-paste-ready commands (`aws --version`, `aws sts get-caller-identity`, `aws login --profile <name>`, `aws login --remote`) and concrete handling for the common failure cases, matching the top anchor for an instruction-style skill.

5 / 5

Workflow Clarity

The flow is clearly sequenced (lead with recommendation → silent precondition checks → confirm → run → verify) with an explicit post-login verification step and a dedicated error-recovery section covering browser, permission, version, and partition failures.

5 / 5

Progressive Disclosure

Sections are well-organized with clear headers and no nested references, but the ~95-line body exceeds the under-50-lines simple-skill exception and content such as error handling and additional resources could live in a references file. Good structure with minor organization gaps matches anchor 4; it is not the anchor-5 clear-overview-with-signaled-references pattern since no bundle split exists.

4 / 5

Total

17

/

20

Passed

Description

86%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

A strong description with excellent trigger coverage and explicit what/when guidance in third-person voice. Its only weaknesses are the single stated capability (fine for a narrow skill, but scored as limited coverage) and a couple of unqualified generic trigger terms.

DimensionReasoningScore

Specificity

Names the domain and one concrete action ("Gets AWS credentials for CLI/SDK access via `aws login`") but does not list several distinct capabilities, matching the anchor for domain plus 1-2 concrete actions rather than the several-action anchor above.

3 / 5

Completeness

It explicitly answers both what ("Gets AWS credentials for CLI/SDK access via `aws login`") and when ("Activates when a developer needs to authenticate to AWS... Triggers: ...") with concrete trigger phrases, matching the top anchor exactly.

5 / 5

Trigger Term Quality

The trigger list is comprehensive and natural — "set up AWS", "configure AWS", "aws login", "get credentials", "authenticate", "session expired", "token expired", "no credentials", "AccessDeniedException" — covering synonyms, user phrasings, and the actual error string a user would paste.

5 / 5

Distinctiveness Conflict Risk

The AWS sign-in niche is clear and mostly distinct, but generic triggers like "authenticate" and "get credentials" are not AWS-qualified and could overlap with other auth/credential skills, keeping it at minor overlap risk rather than minimal.

4 / 5

Total

17

/

20

Passed

Validation

100%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation — 16 / 16 Passed

Validation for skill structure

No warnings or errors.

Repository
aws/agent-toolkit-for-aws
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.